Back

MEDIUM

kernel: ia64: ptrace: peek_or_poke requests miss ptrace_check_attach()

Published Mar 16, 2010

Description

A certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 4 on the ia64 platform allows local users to use ptrace on an arbitrary process, and consequently gain privileges, via vectors related to a missing ptrace_check_attach call.

Affected products

Remediation

Red Hat statement

This issue did not affect the versions of Linux kernel as shipped with Red Hat Enterprise Linux 3, 5 or Red Hat Enterprise MRG, as they do not include the internal change introducing this flaw. A future update in Red Hat Enterprise Linux 4 may address this flaw.

Metrics

Weaknesses (1)

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Mar 16, 2010
Updated Aug 7, 2024
Reserved Feb 26, 2010
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Important
Public date Feb 22, 2010